ad-research

Pass

Audited by Gen Agent Trust Hub on Apr 18, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it ingests and processes untrusted data from external sources.
  • Ingestion points: Scraped content from Meta Ad Library, TikTok ads, Google ads, and competitor landing pages as described in Step 2 and Step 3 of the pipeline.
  • Boundary markers: Absent. The instructions do not include delimiters or specific warnings to ignore instructions embedded within the scraped content.
  • Capability inventory: The skill utilizes search tools (brave-search, tavily), browser automation (playwright), and a knowledge graph (memory MCP) to store and synthesize data.
  • Sanitization: Absent. No sanitization or validation of the external content is performed before it is analyzed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 18, 2026, 12:07 PM
Security Audit — agent-trust-hub — ad-research